Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...



Spine1


Code Block
titleSpine1 After Fabric Auto-configure
collapsetrue
[root@CentOS ~]# ssh root@100.123.13.201
Password:
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC


root@Spine1:RE:0% cli
{master:0}
root@Spine1> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.1
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.1
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.1
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.1:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_gateway__
set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept
set groups __contrail_overlay_dhcp_relay__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_gateway__
set apply-groups __contrail_overlay_evpn_type5__
set apply-groups __contrail_overlay_dhcp_relay__
set system host-name Spine1
set system root-authentication encrypted-password "$6$qof52Bzl$Mt9G322859Vd5UEETw13aEOAo9sLCsmqottP/vwejzaNqpVkeyrkmTQAL2sUc1joyUxL.8f1qO44ho1VttTlD."
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$XeoPVCvj$l5gW5wkIXxdUn/m.TFeV19GInoPlrS2sFN7yvotyrtR1/aRF8R/NVeT41NDZnf5651P2RbGp0yey9BNnzrY21/"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to leaf1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.1/30
set interfaces xe-0/0/1 description "to leaf2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.14.1/30
set interfaces xe-0/0/2 unit 0
set interfaces xe-0/0/3 unit 0
set interfaces xe-0/0/4 unit 0
set interfaces xe-0/0/5 unit 0
set interfaces xe-0/0/6 unit 0
set interfaces xe-0/0/7 unit 0
set interfaces em0 unit 0 family inet address 100.123.13.201/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.1/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.1
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65501
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 description "EBGP peering to Leaf1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 peer-as 65503
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 description "EBGP peering to Leaf2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 peer-as 65504
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine1
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community spine1 members 65501:1
set vlans default vlan-id 1

{master:0}
root@Spine1>

Spine2


[root@CentOS ~]# ssh root@100.123.13.202 Password: --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Spine2:RE:0% root@Spine2:RE:0% cli {master:0} root@Spine2> show configuration | display set set version 18.1R3-S5.3 set
Code Block
titleSpine2 After Fabric Auto-configure
collapsetrue
spine1 overlay only
#
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 7 vrf-target target:64512:8000006
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007
#
set groups __contrail_basicoverlay_evpn__ snmp community public authorization read-only
set groups policy-options policy-statement __contrail_basicbms_lr_ protocols l2-learning global-mac-table-aging-time 1800cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import term t1 from community target_64512_8000009
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement MAINTENANCE-MODE__contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import term term1t1 fromthen family evpnaccept
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2__contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export term t1 then community add target_64512_8000009
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE__contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export term term1t1 from nlri-route-type 1
then accept
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE_contrail_bms1_vn-l2-7-import term term1t1 from nlri-route-type 3community target_64512_8000006
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE_contrail_bms1_vn-l2-7-import term term1t1 from nlri-route-type 4then accept
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement MAINTENANCE-MODE_contrail_bms1_vn-l2-7-export term term1t1 then from nlri-route-type 5community add target_64512_8000006
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement MAINTENANCE-MODE_contrail_bms1_vn-l2-7-export term term1t1 from nlri-route-type 6
then accept
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE_contrail_bms2_vn-l2-8-import term term1t1 thenfrom community add COM-MAINTENANCE
target_64512_8000007
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE_contrail_bms2_vn-l2-8-import term term1t1 then accept
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE_contrail_bms2_vn-l2-8-export term term100t1 then accept community add target_64512_8000007
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE_contrail_bms2_vn-l2-8-export term term1 from family evpnt1 then accept
#
#
#
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
community target_64512_8000009 members target:64512:8000009
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
community target_64512_8000006 members target:64512:8000006
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1community target_64512_8000007 members target:64512:8000007
#
#
#
set groups __contrail_overlay_basicevpn__ policyswitch-options policyvrf-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3import __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import
set groups __contrail_overlay_basicevpn__ policyswitch-options policyvrf-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4import _contrail_bms1_vn-l2-7-import
set groups __contrail_overlay_basicevpn__ policyswitch-options policyvrf-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
import _contrail_bms2_vn-l2-8-import
#
#
set groups __contrail_overlay_basicevpn_gateway__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
interfaces irb gratuitous-arp-reply
set groups __contrail_overlay_evpn_basicgateway__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
interfaces irb unit 7 proxy-macip-advertisement
set groups __contrail_basicoverlay_evpn_ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
gateway__ interfaces irb unit 7 virtual-gateway-accept-data
set groups __contrail_basicoverlay_evpn_gateway__ policy-options policy-statement MAINTENANCE-MODE-underlay then acceptinterfaces irb unit 7 family inet address 192.168.100.4/24 preferred
set groups __contrail_basicoverlay_evpn_gateway__ policy-optionsinterfaces communityirb COM-MAINTENANCEunit members7 9999:9999family setinet groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.2address 192.168.100.4/24 virtual-gateway-address 192.168.100.1
set groups __contrail_overlay_bgpevpn_gateway_ routing-options route-distinguisher-id 10.255.0.2_ interfaces irb unit 7 virtual-gateway-v4-mac 00:00:5e:01:00:01
set groups __contrail_overlay_bgpevpn_gateway__ routing-options autonomous-system 64512
 interfaces irb unit 8 proxy-macip-advertisement
set groups __contrail_overlay_evpn_bgpgateway__ routing-optionsinterfaces resolutionirb rib bgp.rtarget.0 resolution-ribs inet.0unit 8 virtual-gateway-accept-data
set groups __contrail_overlay_bgpevpn_gateway__ protocols bgp group _contrail_asn-64512 type internal interfaces irb unit 8 family inet address 192.168.200.4/24 preferred
set groups __contrail_overlay_bgpevpn_gateway__ protocolsinterfaces irb bgpunit group _contrail_asn-64512 local8 family inet address 192.168.200.4/24 virtual-gateway-address 10192.255168.0200.21
set groups __contrail_overlay_evpn_bgpgateway__ protocolsinterfaces irb bgpunit group _contrail_asn-64512 hold-time 908 virtual-gateway-v4-mac 00:00:5e:01:00:01
set groups __contrail_overlay_bgpevpn_gateway__ protocolsvlans bgpbd-7 group _contrail_asn-64512 import REJECT-MAINTENANCE-MODEdescription "Virtual Network - bms1_vn"
set groups __contrail_overlay_evpn_bgpgateway__ protocolsvlans bgp group _contrail_asn-64512 family evpn signaling
bd-7 vlan-id none
set groups __contrail_overlay_bgpevpn_gateway__ protocolsvlans bgp group _contrail_asn-64512 family route-target
bd-7 l3-interface irb.7
set groups __contrail_overlay_evpn_bgpgateway__ protocolsvlans bgpbd-7 group _contrail_asn-64512 export _contrail_ibgp_export_policy
vxlan vni 7
set groups __contrail_overlay_evpn_bgpgateway__ protocols bgp group _contrail_asn-64512 vpn-apply-export vlans bd-8 description "Virtual Network - bms2_vn"
set groups __contrail_overlay_evpn_bgpgateway__ protocolsvlans bgp group _contrail_asn-64512 cluster 0.0.0.100bd-8 vlan-id none
set groups __contrail_overlay_bgpevpn_gateway__ protocols bgp group _contrail_asn-64512 local-as 64512vlans bd-8 l3-interface irb.8
set groups __contrail_overlay_evpn_bgpgateway__ protocolsvlans bgpbd-8 group _contrail_asn-64512 multipathvxlan vni 8
set groups __contrail_overlay_bgpevpn_type5__ protocols bgp group _contrail_asn-64512 neighbor 10interfaces lo0 unit 1009 family inet address 127.0.0.1.2 peer-as 64512/32
#
set groups __contrail_overlay_evpn_bgptype5__ protocols bgpevpn group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512default-gateway no-gateway-community
#
set groups __contrail_overlay_evpn_bgptype5__ protocols bgp group routing-instances __contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 instance-type vrf
set groups __contrail_overlay_evpn_bgptype5__ protocols bgp group routing-instances __contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512
bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface lo0.1009
set groups __contrail_overlay_evpn_bgptype5__ policyrouting-options policy-statement instances __contrail_ibgpbms_export_policy term inet-vpn from family inet-vpn
lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface irb.8
set groups __contrail_overlay_bgpevpn_type5__ policyrouting-options policy-statement instances __contrail_ibgpbms_export_policy term inet-vpn then next-hop selflr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface irb.7
set groups __contrail_overlay_evpn_bgptype5__ policyrouting-options policy-statement instances __contrail_ibgpbms_export_policy term inet6-vpn from family inet6-vpn
set groups lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 vrf-import __contrail_overlaybms_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop selflr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import
set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table export EVPN-LB
set groups instances __contrail_overlaybms_evpn__ protocols evpn encapsulation vxlan
set groups lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 vrf-export __contrail_overlaybms_evpn__ protocols evpn extended-vni-list all
lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export
set groups __contrail_overlay_evpn_type5__ policyrouting-options policy-statement EVPN-LB term term1 from protocol evpn
set groups instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options rib __contrail_overlaybms_evpnlr__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packetcc8a4c77-17dd-493d-b5a1-e24c7f3595f0.inet6.0 multipath
set groups __contrail_overlay_evpn_type5__ policyrouting-options policy-statement import-evpn term esi-in from community community-esi-ininstances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options static route 172.16.0.3/32 discard
set groups __contrail_overlay_evpn_type5__ policyrouting-options policy-statement import-evpn term esi-in then accept
instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options multipath
set groups __contrail_overlay_evpn_type5__ policyrouting-options policy-statement import-evpn term default-term then rejectinstances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes advertise direct-nexthop
set groups __contrail_overlay_evpn_type5__ policy-options community community-esi-in members target:64512:7999999routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes encapsulation vxlan
set groups __contrail_overlay_evpn_type5__ switch-options vtep-source-interface lo0.0
set groups routing-instances __contrail_overlaybms_evpnlr__ switch-options route-distinguisher 10.255.0.2:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes vni 9
set groups __contrail_overlay_evpn_gatewaytype5__ set groupsrouting-instances __contrail_overlaybms_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statementlr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes export type5_policy
term 1 from protocol direct
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static


Spine2


Code Block
titleSpine2 After Fabric Auto-configure
collapsetrue
[root@CentOS ~]# ssh root@100.123.13.202
Password:

--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Spine2:RE:0%
root@Spine2:RE:0% cli
{master:0}
root@Spine2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_overlaybasic_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept_ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_overlay_evpnbasic_type5__ policy-options policy-statement type5_policyMAINTENANCE-MODE term 3term1 from protocolfamily evpn
set groups __contrail_overlaybasic_evpn_type5__ policy-options policy-statement type5_policyMAINTENANCE-MODE term 3term1 from nlri-route-filter 0.0.0.0/0 prefix-length-range /32-/32type 2
set groups __contrail_overlaybasic_evpn_type5__ policy-options policy-statement type5_policyMAINTENANCE-MODE term term1 3 then acceptfrom nlri-route-type 1
set groups __contrail_overlay_dhcp_relaybasic__ set apply-policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__
set apply-policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_overlaybasic_evpn__
set apply-groups __contrail_overlay_evpn_gateway__
set apply-groups __contrail_overlay_evpn_type5__
set apply- policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_overlay_dhcp_relaybasic__ set system host-name Spine2
set system root-authentication encrypted-password "$6$jDqH1tQu$YRcyEsvWdd5JExE0vHDZGkLBeFH/m95mg0W4.M8QC7xW3BWe3CMTs1EtxF.9pKvOyK55T2xB6pBIWuz1QSS6n1"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$kGQu2LyG$P6I21NZjh1mYl6wyGVMAm/pmjzQDjWlsodMi1N//izoZxQfBEx283mDMMCwGMFWsw4RXMVmsItMwTzqBPnYVL1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to leaf1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.23.1/30
set interfaces xe-0/0/1 description "to leaf2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.1/30
set interfaces xe-0/0/2 unit 0
set interfaces xe-0/0/3 unit 0
set interfaces xe-0/0/4 unit 0
set interfaces xe-0/0/5 unit 0
set interfaces xe-0/0/6 unit 0
set interfaces xe-0/0/7 unit 0
set interfaces em0 unit 0 family inet address 100.123.13.202/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet addresspolicy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.2
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.2/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
setgroups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options staticresolution routerib 100bgp.123.0rtarget.0/16 nextresolution-hopribs 100.123inet.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-idgroups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.2
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP mtu-discovery
set _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP_contrail_asn-64512 export IPCLOS_BGP_EXP_contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP_contrail_asn-64512 vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65502
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP multipath multiple-as
set _contrail_asn-64512 cluster 0.0.0.100
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set_contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3_contrail_asn-64512 multipath
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP_contrail_asn-64512 neighbor 10.0.1.23.2 description "EBGP peering to Leaf1"
set peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2_contrail_asn-64512 neighbor 10.255.0.1 peer-as 6550364512
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP_contrail_asn-64512 neighbor 10.1255.240.23 description "EBGP peering to Leaf2"
set peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group IPCLOS_eBGP_contrail_asn-64512 neighbor 10.1255.240.24 peer-as 6550464512
set protocols lldp interface all
set protocols igmp-snooping vlan default
set groups __contrail_overlay_bgp__ policy-options policy-statement IPCLOS_BGP_EXP_contrail_ibgp_export_policy term loopbackinet-vpn from protocolfamily directinet-vpn
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
setgroups __contrail_overlay_bgp__ policy-options policy-statement IPCLOS_BGP_EXP_contrail_ibgp_export_policy term loopbackinet-vpn then next-hop communityself
addset spine2
setgroups __contrail_overlay_bgp__ policy-options policy-statement IPCLOS_BGP_EXP_contrail_ibgp_export_policy term loopback then acceptinet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement IPCLOS_BGP_EXP_contrail_ibgp_export_policy term defaultinet6-vpn then next-hop rejectself
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement IPCLOS_BGP_IMPEVPN-LB term defaultterm1 from thenprotocol rejectevpn
set groups __contrail_overlay_evpn__ policy-options policy-statement PFEEVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options community spine2 members 65502:1
set vlans default vlan-id 1

{master:0}
root@Spine2>

Leaf1
Code Block
titleLeaf1 After Fabric Auto-configure
collapsetrue
[root@CentOS ~]# ssh root@100.123.13.203
Password:
Last login: Tue Dec 10 15:48:16 2019 from 100.123.34.3
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf1:RE:0% cli
{master:0}
root@Leaf1> show configuration | display set | no-more
set version 18.1R3-S5.3policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.2:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_gateway__
set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept
set groups __contrail_overlay_dhcp_relay__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_gateway__
set apply-groups __contrail_overlay_evpn_type5__
set apply-groups __contrail_overlay_dhcp_relay__
set system host-name Spine2
set system root-authentication encrypted-password "$6$jDqH1tQu$YRcyEsvWdd5JExE0vHDZGkLBeFH/m95mg0W4.M8QC7xW3BWe3CMTs1EtxF.9pKvOyK55T2xB6pBIWuz1QSS6n1"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$kGQu2LyG$P6I21NZjh1mYl6wyGVMAm/pmjzQDjWlsodMi1N//izoZxQfBEx283mDMMCwGMFWsw4RXMVmsItMwTzqBPnYVL1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to leaf1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.23.1/30
set interfaces xe-0/0/1 description "to leaf2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.1/30
set interfaces xe-0/0/2 unit 0
set interfaces xe-0/0/3 unit 0
set interfaces xe-0/0/4 unit 0
set interfaces xe-0/0/5 unit 0
set interfaces xe-0/0/6 unit 0
set interfaces xe-0/0/7 unit 0
set interfaces em0 unit 0 family inet address 100.123.13.202/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.2/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.2
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65502
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 description "EBGP peering to Leaf1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 peer-as 65503
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 description "EBGP peering to Leaf2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 peer-as 65504
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community spine2 members 65502:1
set vlans default vlan-id 1

{master:0}
root@Spine2>


Leaf1


Code Block
titleLeaf1 After Fabric Auto-configure
collapsetrue
[root@CentOS ~]# ssh root@100.123.13.203
Password:
Last login: Tue Dec 10 15:48:16 2019 from 100.123.34.3
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf1:RE:0% cli
{master:0}
root@Leaf1> show configuration | display set | no-more
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.3
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.3
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.3
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.3:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf1
set system root-authentication encrypted-password "$6$N.olvWXe$bre63i2oxPcMYkWxX7rmAStuvvnjlPcKDUZ.6laUqp.G6Ywo/8RfDgvCyp6BHTTGxOy2XFb4LSXcNo3sOho8M."
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$0L1vpE3h$lifJp5SXAKGH7HjlkQ2y3TNBdshF2scac8I6dSqQQwu11k2EQOd3Faa1OtaSCFJ8kAQaBODzck84iar3aElQC1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.23.2/30
set interfaces xe-0/0/2 description "To AIO control_data, IBGP overlay"
set interfaces xe-0/0/2 mtu 9192
set interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode access
set interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members cluster_infra
set interfaces em0 unit 0 family inet address 100.123.13.203/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces irb unit 4001 description "irb for vlan_cluster_infra AIO data interface default"
set interfaces irb unit 4001 family inet address 10.0.1.254/24
set interfaces lo0 unit 0 family inet address 10.255.0.3/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.3
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65503
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf1
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf1 members 65503:1
set vlans cluster_infra vlan-id 4001
set vlans cluster_infra l3-interface irb.4001
set vlans default vlan-id 1

{master:0}
root@Leaf1>


Leaf2


Code Block
titleLeaf2 After Fabric Auto-configure
collapsetrue
[root@CentOS ~]# ssh root@100.123.13.204
Password:
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf2:RE:0% cli
{master:0}
root@Leaf2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ snmp community public authorization read-onlypolicy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ protocolspolicy-options l2policy-learningstatement globalMAINTENANCE-mac-table-aging-time 1800MODE-underlay then accept
set groups __contrail_basic__ policy-options community policy-statement MAINTENANCE-MODE term term1 from family evpnCOM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4
set groups __contrail_overlay_basicbgp__ policyrouting-options policyroute-distinguisher-statement MAINTENANCE-MODE term term1 from nlri-route-type 2id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_basicoverlay_bgp__ policyrouting-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_basicbgp__ protocols policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3bgp group _contrail_asn-64512 type internal
set groups __contrail_basicoverlay_bgp__ protocols policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type bgp group _contrail_asn-64512 local-address 10.255.0.4
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_basicbgp__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_basicbgp__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCEprotocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_basicoverlay_bgp__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_basicoverlay_bgp__ protocols policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_basicbgp__ protocols policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_basicoverlay_bgp__ policy-options policy-statement REJECT-MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet-vpn from family nlri-route-type 4inet-vpn
set groups __contrail_overlay_basicbgp__ policy-options policy-statement REJECT-MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet-vpn fromthen nlrinext-route-typehop 5self
set groups __contrail_overlay_basicbgp__ policy-options policy-statement REJECT-MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet6-vpn from nlri-route-type 6family inet6-vpn
set groups __contrail_basicoverlay_bgp__ policy-options policy-statement REJECT-MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet6-vpn then next-hop rejectself
set groups __contrail_basicoverlay_evpn__ policyrouting-options policyforwarding-statementtable export MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE-underlay then acceptprotocols evpn extended-vni-list all
set groups __contrail_basicoverlay_evpn__ policy-options community COM-MAINTENANCE members 9999:9999policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_bgpevpn__ routingpolicy-options router-id 10.255.0.3policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_bgpevpn__ routingpolicy-options policy-statement route-distinguisher-id 10.255.0.3import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_bgpevpn__ routingpolicy-options autonomous-system 64512 policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_bgpevpn__ routingpolicy-options resolution rib bgp.rtarget.0 resolution-ribs inet.0policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_bgpevpn__ protocols bgp group _contrail_asn-64512 type internalpolicy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_bgpevpn__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.3switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_bgpevpn__ protocols bgp group _contrail_asn-64512 hold-time 90switch-options route-distinguisher 10.255.0.4:7999
set groups __contrail_overlay_bgpevpn__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODEswitch-options vrf-import import-evpn
set groups __contrail_overlay_bgpevpn__ protocols bgp group _contrail_asn-64512 family evpn signaling
switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_bgpevpn_access__ protocols bgp group _contrail_asn-64512 family route-targetevpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_bgpaccess__ protocols bgpigmp-snooping group _contrail_asn-64512 export _contrail_ibgp_export_policy
vlan all proxy
set groups __contrail_overlay_bgpevpn_access__ protocols bgp group _contrail_asn-64512 vpn-apply-exportswitch-options vrf-target auto
set groups __contrail_overlay_bgplag__
protocolsset bgpgroups group __contrail_asn-64512 local-as 64512overlay_multi_homing__
set groups __contrail_overlay_storm_bgpcontrol__
protocolsset bgp group apply-groups __contrail_basic__asn-64512
multipath
set apply-groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set apply-groups __contrail_overlay_bgpevpn__
protocolsset bgp group apply-groups __contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_bgphoming__
policy-optionsset policyapply-statementgroups __contrail_overlay_storm_ibgpcontrol_export_policy
set termsystem inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.3:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf1
set system root-authentication encrypted-password "$6$N.olvWXe$bre63i2oxPcMYkWxX7rmAStuvvnjlPcKDUZ.6laUqp.G6Ywo/8RfDgvCyp6BHTTGxOy2XFb4LSXcNo3sOho8M."
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$0L1vpE3h$lifJp5SXAKGH7HjlkQ2y3TNBdshF2scac8I6dSqQQwu11k2EQOd3Faa1OtaSCFJ8kAQaBODzck84iar3aElQC1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.23.2/30
set interfaces xe-0/0/2 description "To AIO control_data, IBGP overlay"
set interfaces xe-0/0/2 mtu 9192
set interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode access
set interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members cluster_infra
set interfaces em0 unit 0 family inet address 100.123.13.203/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces irb unit 4001 description "irb for vlan_cluster_infra AIO data interface default"
set interfaces irb unit 4001 family inet address 10.0.1.254/24
set interfaces lo0 unit 0 family inet address 10.255.0.3/32
set host-name Leaf2
set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30
set interfaces em0 unit 0 family inet address 100.123.13.204/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.4/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.4
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65504
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf2 members 65504:1
set vlans default vlan-id 1

{master:0}
root@Leaf2>


Code Block
titleAfter Overlay configure
collapsetrue
root@Leaf2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set forwardinggroups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options stormpolicy-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.3
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65503
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
setstatement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement IPCLOS_BGP_EXPREJECT-MAINTENANCE-MODE term loopbackterm1 from protocol bgp
set nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement IPCLOS_BGP_EXPREJECT-MAINTENANCE-MODE term loopbackterm1 then communityreject
addset leaf1
setgroups __contrail_basic__ policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement IPCLOS_BGP_EXP term default then reject
setMAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf1 members 65503:1
set vlans cluster_infra vlan-id 4001
set vlans cluster_infra l3-interface irb.4001
set vlans default vlan-id 1

{master:0}
root@Leaf1>

Leaf2
Code Block
titleLeaf2 After Fabric Auto-configure
collapsetrue
[root@CentOS ~]# ssh root@100.123.13.204
Password:
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf2:RE:0% cli
{master:0}
root@Leaf2> show configuration | display set
set version 18.1R3-S5.3community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_basicbgp__ protocols bgp snmp community public authorization read-only
group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_basicbgp__ protocols l2-learning global-mac-table-aging-time 1800bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_basicoverlay_bgp__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_basicoverlay_bgp__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_basicoverlay_bgp__ protocols policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet-vpn from family nlriinet-route-typevpn
4
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet-vpn fromthen nlrinext-route-typehop 5self
set groups __contrail_basicoverlay_bgp__ policy-options policy-statement MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet6-vpn from nlri-route-type 6family inet6-vpn
set groups __contrail_overlay_basicbgp__ policy-options policy-statement MAINTENANCE-MODE_contrail_ibgp_export_policy term term1inet6-vpn then communitynext-hop addself
COM-MAINTENANCE
set groups __contrail_overlay_basicevpn__ policyrouting-options policyforwarding-statementtable export MAINTENANCEEVPN-MODE term term1 then accept
LB
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCE-MODE term term100 then acceptprotocols evpn vni-options vni 8 vrf-target target:64512:8000007
set groups __contrail_overlay_basicevpn__ protocols policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECTEVPN-MAINTENANCE-MODELB term term1 from communityprotocol COM-MAINTENANCEevpn
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECTEVPN-MAINTENANCE-MODELB term term1 fromthen nlriload-routebalance per-typepacket
2
set groups __contrail_overlay_basicevpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE_contrail_bms2_vn-l2-8-import term term1t1 from nlri-route-type 1community target_64512_8000007
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE_contrail_bms2_vn-l2-8-import term term1t1 from nlri-route-type 3then accept
set groups __contrail_overlay_basicevpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4_contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007
set groups __contrail_overlay_basicevpn__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5_contrail_bms2_vn-l2-8-export term t1 then accept
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECTimport-MAINTENANCE-MODEevpn term term1esi-in from community nlricommunity-routeesi-type 6in
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement REJECTimport-MAINTENANCE-MODEevpn term term1esi-in then rejectaccept
set groups __contrail_overlay_basicevpn__ policy-options policy-statement MAINTENANCEimport-MODE-underlayevpn thenterm asdefault-path-prepend "9999 9999 9999"
term then reject
set groups __contrail_basicoverlay_evpn__ policy-options policy-statement MAINTENANCE-MODE-underlay then acceptcommunity target_64512_8000007 members target:64512:8000007
set groups __contrail_overlay_basicevpn__ policy-options community COMcommunity-esi-MAINTENANCEin members 9999target:64512:99997999999
set groups __contrail_overlay_bgpevpn__ routingswitch-options routervtep-source-idinterface 10.255lo0.0.4
set groups __contrail_overlay_bgpevpn__ routingswitch-options route-distinguisher-id 10.255.0.4:7999
set groups __contrail_overlay_bgpevpn__ routingswitch-options autonomousvrf-system 64512
set groups __import _contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0bms2_vn-l2-8-import
set groups __contrail_overlay_bgpevpn__ protocols bgp group _contrail_asn-64512 type internal
switch-options vrf-import import-evpn
set groups __contrail_overlay_bgpevpn__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_bgpevpn_access__ protocols bgp group _contrail_asn-64512 hold-time 90 interfaces xe-0/0/2 description "Virtual Port Group : bms2_vn"
set groups __contrail_overlay_bgpevpn_access__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODEinterfaces xe-0/0/2 native-vlan-id 200
set groups __contrail_overlay_bgpevpn_access__ protocols bgp group _contrail_asn-64512 family evpn signaling
interfaces xe-0/0/2 mtu 9192
set groups __contrail_overlay_evpn_bgpaccess__ protocols bgp group _contrail_asn-64512 family route-targetinterfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode trunk
set groups __contrail_overlay_evpn_bgpaccess__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-exportinterfaces xe-0/0/2 unit 0 family ethernet-switching vlan members bd-8
set groups __contrail_overlay_evpn_bgpaccess__ protocols bgp group _contrail_asn-64512 local-as 64512evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_bgpaccess__ protocols bgpigmp-snooping group _contrail_asn-64512 multipathvlan all proxy
set groups __contrail_overlay_bgpevpn_access__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512switch-options vrf-target auto
set groups __contrail_overlay_evpn_bgpaccess__ protocolsvlans bgpbd-8 group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512description "Virtual Network - bms2_vn"
set groups __contrail_overlay_bgpevpn_access__ policyvlans bd-options8 policy-statementvlan-id 200
set groups __contrail_ibgpoverlay_evpn_access_export_policy termvlans inetbd-vpn8 fromvxlan familyvni inet-vpn8
set groups __contrail_overlay_bgplag__
policy-options policy-statementset groups __contrail_ibgpoverlay_multi_homing_export_policy term inet-vpn
then next-hop self
set groups __contrail_overlay_bgpstorm_control__
policy-optionsset policyapply-statementgroups __contrail_ibgpbasic_export_policy
term inet6-vpn from family inet6-vpn
set set apply-groups __contrail_overlay_bgp__
policy-optionsset policyapply-statementgroups __contrail_ibgp_export_policy term inet6-vpn then next-hop self
set overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
routing-optionsset forwardingapply-table export EVPN-LB
set groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_evpnhoming__
protocols evpn encapsulation vxlan
set apply-groups __contrail_overlay_storm_evpncontrol__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf2
set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30
set interfaces em0 unit 0 family inet address 100.123.13.204/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.4/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.4
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65504
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf2 members 65504:1
set vlans default vlan-id 1

{master:0}
root@Leaf2>
set system host-name Leaf2
set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30
set interfaces em0 unit 0 family inet address 100.123.13.204/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.4/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.4
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65504
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf2 members 65504:1
set vlans default vlan-id 1



Code Block
titleleaf2 Overlay only
#
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007
#
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept
#
set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007
#
set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import
#
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 description "Virtual Port Group : bms2_vn"
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 native-vlan-id 200
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 mtu 9192
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode trunk
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members bd-8
#
set groups __contrail_overlay_evpn_access__ vlans bd-8 description "Virtual Network - bms2_vn"
set groups __contrail_overlay_evpn_access__ vlans bd-8 vlan-id 200
set groups __contrail_overlay_evpn_access__ vlans bd-8 vxlan vni 8